Endpoint Engineer - InTune
CACI
About the position CACI seeks an experienced Endpoint Engineer - InTune for a critical role supporting the United States Secret Service (USSS) contract within the Department of Homeland Security. This position strengthens federal IT infrastructure by...
Job description
Responsibilities
Lead Microsoft Intune administration and engineering, including policy creation and management, application deployment, device compliance, and conditional access configurationsImplement and manage Microsoft Endpoint Manager (Intune + SCCM) for comprehensive endpoint managementManage device enrollment, policy management, application deployment, compliance enforcement, and conditional access across the enterpriseAdminister InTune AutoPilot for modern device provisioning and deploymentDesign and implement hybrid cloud solutions leveraging Azure AD and on-premises Active Directory for seamless identity managementUtilize Azure Automation and Intune to manage and secure cloud-based and on-premises Windows workstations and servers, ensuring they are patched to correct levelsDevelop and maintain Azure-based system templates and images for rapid deploymentManage and maintain Windows Server 2016/2019/2022 systems and Windows 11 PC images in both Azure and on-premises environmentsIdentify, analyze, and resolve system problems with both short-term workarounds and long-term cloud-based solutionsPerform expertise in MDT and SCCM including capturing images (.WIM), creating packages, advertisements, task sequences, operating system deployment (OSD), and queriesSupport SCCM software packaging and patching across the enterpriseWrite advanced PowerShell scripts and leverage Azure Functions to automate systems administration tasks across cloud and on-premises environmentsDevelop automation solutions to customize configurations and streamline operational taskingDesign and implement Azure-based security solutions, including Azure Security Center and Azure SentinelExecute IAVA process including CYBERCOM release process, testing, approval, and deployment processesManage Active Directory Security Groups, OUs, DNS, and GPO management to enforce security policiesImplement and maintain certificate-based authentication and VPN solutionsProvide guidance and work leadership to less-experienced cloud and systems engineersCollaborate across endpoint management and server operations teams to drive automation and cloud-native solutionsTest and evaluate new/emerging technologies to deliver faster deployments and decreased workloadRequirements
Ability to obtain Public Trust clearanceBachelor's degree + 13 years of applicable experience (equivalencies: 19 years no degree, AA + 15 years, MA + 10 years)Minimum 5+ years SCCM experience supporting software packaging and patchingMinimum 5+ years InTune AutoPilot administration experienceStrong working knowledge of SCCM and Intune including device enrollment, policy management, application deployment, compliance enforcement, and conditional accessSolid understanding of VMware vCenter virtualization platformFunctional understanding of Microsoft SQL Server and Active DirectoryExpertise in MDT and SCCM: capturing images (.WIM), creating packages, advertisements, task sequences, operating system deployment (OSD), and queriesSolid knowledge of PowerShell scripting to automate tasking and customize configurationsExpertise with IAVA process including CYBERCOM release process, testing, approval, and deployment processesSolid knowledge of Active Directory Security Groups, OUs, DNS, and GPO managementSolid Windows troubleshooting skills across server and desktop environmentsStrong understanding of networking concepts including VPN and certificate-based authenticationMicrosoft Certified: Endpoint Administrator Associate certificationSCCM CertifiedNice-to-haves
ITIL v4 certificationMicrosoft 365 Certified: Endpoint Manager SpecialistMicrosoft 365 Certified: Modern Desktop Administrator AssociateAdditional Autopilot experience beyond baseline requirementsCloud services familiarity, particularly Microsoft Azure platform and servicesBenefits
flexible time offrobust learning resourcescomprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits